RSA recently sent a notification to a limited number of customers, partners and vendors explaining that RSA identified unauthorized access to two RSA Microsoft email accounts that occurred between October 29, 2024 and November 3, 2024. The incident was fully contained on November 4, 2024 and is still being actively evaluated.
During the event, an external actor had visibility into two RSA employee’s email boxes and sent a malicious OneNote file link to some of the employee’s contacts. This unauthorized access has been removed and the OneNote file has been deleted.
RSA has informed the employees’ contacts of this incident. We take the protection and privacy of our customers, partners and vendors very seriously and will continue to update them if our analysis reveals any significant new information.
Aside from improper access to 2 e-mail accounts, which resulted from a phishing attack, after a thorough review over the past week, RSA has no indication of any access to other RSA systems and services. RSA continues to work with our internal security team, Security Operations Center and Microsoft to monitor for and prevent unauthorized use of our email system.
For further information, please contact security@rsa.com.
Related Articles
Cleanup WTD Incidents table (postgreSQL) 26Number of Views Events and incidents mark as deleted automatically 19Number of Views How to configure the Certificate Renewal Policy 25Number of Views Workflow error: The work item count of XX exceeds the maximum limit of 10 in RSA RSA Via Lifecycle and Governance 23Number of Views RSA Access Manager password policy for automatic user unlock does not work when using an Active Directory user store 38Number of Views
Trending Articles
Downloading RSA Authentication Manager license files or RSA Software token seed records RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory Mandatory Certificate Upgrade Required by 6th October 2025 for RSA MFA Agent for PAM, RSA MFA Agent for Apache, and Third … RSA Authentication Manager 8.9 Release Notes (January 2026)